CVE-2018-1107
30.03.2021, 02:15
It was discovered that the is-my-json-valid JavaScript library used an inefficient regular expression to validate JSON fields defined to have email format. A specially crafted JSON file could cause it to consume an excessive amount of CPU time when validated.Enginsight
Vendor | Product | Version |
---|---|---|
is-my-json-valid_project | is-my-json-valid | 𝑥 < 1.4.1 |
is-my-json-valid_project | is-my-json-valid | 2.0.0 ≤ 𝑥 < 2.17.2 |
𝑥
= Vulnerable software versions